DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

A few more breaches added to HHS's public breach tool

Posted on April 24, 2014 by Dissent

HHS recently started changing their breach tool. Unfortunately, at times they seem to add breaches before their more recent updates, and we may not notice they’ve been added if we’re used to starting at where we left off in their list. Today, I discovered a few more breaches they had added:

Kmart reported 16,446 were affected by the theft of EMR. Although HHS’s log shows the state as IL, I suspect they just used the corporate headquarters address and that this may be the breach in Pennsylvania previously noted on this blog.

Lewis J. Sims, DPM, PC (d/b/a Sims And Associates Podiatry) in New York reported that laptops stolen on January 10, 2014 contained information on 6,475 patients. A notification, linked from the footer of their website, says:

A burglary and theft of computer equipment from the office of Lewis J. Sims, DPM dba Sims and Associates Podiatry, 19 Baker Avenue., Suite 203, Poughkeepsie, New York, may have compromised the privacy and security of patient information. The incident occurred between the evening of Friday, January 10, 2014, and 9:30 a.m. on Sunday, January 12, 2014, and was discovered around 9:30 a.m. on Sunday, January 12, 2014. Three laptop computers containing patient data were stolen.

The patient information on the stolen laptops included names, addresses, phone numbers, genders, dates of birth, ages, and internal chart numbers. For patients undergoing vascular testing during 2007 through January 10, 2014, the information also likely included last visit dates, vascular testing information, health insurance information, and Social Security numbers. For patients prescribed orthotics from mid-2012 through January 10, 2014, the information also likely included weights and orthotics prescribed. If patient x-rays were taken during 2004 through January 10, 2014, the information also likely included x-ray dates and imaging.

The Poughkeepsie Police Department report is case number 400695. There has been no evidence of misuse of any affected person’s information, and a review of procedures to enhance security and theft protection is ongoing. Anyone possibly affected should monitor financial accounts and Health Insurance Explanation of Benefits. Additionally, they should call (877) 322- 8228 or go to www.annualcreditreport.com to obtain a free credit report from the U.S. credit reporting agencies (Equifax, Experian, and TransUnion) as well as contact those agencies and go to the New York Attorney General’s Office website at www.ag.ny.gov for information about identity theft protection, including security freezes.

For more information: call toll free 855-249-0045 and ask to speak with Rosemary, or email at simsandassociatespodiatry.com, or by mail to 19 Baker Avenue., Suite, 203 Poughkeepsie, NY 12601.

A breach involving the University of Miami that occurred in June 2013 was also added to the breach tool. The breach, which involved paper records, affected 13,074 patients, and may be the breach previously noted here.

The Kroger Co., For Itself And Its Affiliates And Subsidiaries reported that 504 were affected by a breach on October 30, 2013 that involved EMR.

Category: Uncategorized

Post navigation

← Social security numbers stolen from Tufts Health members
ME: Washington county leaders looking into events surrounding leak of social security data →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • B.C. health authority faces class-action lawsuit over 2009 data breach (1)
  • Private Industry Notification: Silent Ransom Group Targeting Law Firms
  • Data Breach Lawsuits Against Chord Specialty Dental Partners Consolidated
  • PA: York County alerts residents of potential data breach
  • FTC Finalizes Order with GoDaddy over Data Security Failures
  • Hacker steals $223 million in Cetus Protocol cryptocurrency heist
  • Operation ENDGAME strikes again: the ransomware kill chain broken at its source
  • Mysterious Database of 184 Million Records Exposes Vast Array of Login Credentials
  • Mysterious hacking group Careto was run by the Spanish government, sources say
  • 16 Defendants Federally Charged in Connection with DanaBot Malware Scheme That Infected Computers Worldwide

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • D.C. Federal Court Rules Termination of Democrat PCLOB Members Is Unlawful
  • Meta may continue to train AI with user data, German court says
  • Widow of slain Saudi journalist can’t pursue surveillance claims against Israeli spyware firm
  • Researchers Scrape 2 Billion Discord Messages and Publish Them Online
  • GDPR is cracking: Brussels rewrites its prized privacy law
  • Telegram Gave Authorities Data on More than 20,000 Users
  • Police secretly monitored New Orleans with facial recognition cameras

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.